Saleem Yousaf
Cloud & Cyber Security Experience
Saleem Yousaf has extensive experience delivering solution architecture and security design across government, critical national infrastructure, and enterprise environments.
01
HM Land Registry
Senior Security Solution Architect
Worked within a fully AWS-based platform at HM Land Registry,
supporting secure architecture design across APIs, middleware, and
distributed systems.
Key responsibilities included:
- Strengthening API security across services and integrations
- Leading adoption of STRIDE threat modelling across new and
existing systems - Supporting secure architecture design across middleware and AWS services
- Embedding security practices into the software development lifecycle
This work contributed to improved consistency in security design and a more proactive, risk-based approach to architecture across the platform.
02
Ministry of Justice (MOJ)
Lead Cloud Security Architect
Worked as a Lead Cloud Security Architect within MOJ Digital & Technology, supporting the security and assurance of web-based systems and services across government platforms.
Key responsibilities included:
- Leading security assurance across cloud-based applications and services
- Identifying security risks and translating them into clear,
non-technical insights for stakeholders - Embedding modern, agile security practices within development teams
- Implementing Continuous Security Validation using tools such as Rapid7, Hardenize, and Cymulate
- Facilitating workshops to improve security posture across teams and platforms
- Conducting threat modelling and breach attack simulation exercises
- Strengthening API security through continuous validation, reducing exposure to threats
This work contributed to improving the security maturity of digital services and embedding a proactive, security-first approach across teams.
03
Smart DCC
Enterprise Security Architect (CNI)
Worked as an Enterprise Security Architect at Smart DCC, supporting the SMIKI platform which underpins security for the UK’s Critical National Infrastructure smart metering programme.
Key responsibilities included:
- Defining security architecture and design principles for a PKI
re-platforming programme based on AWS cloud hosting - Establishing Cloud Adoption Framework (CAF) and cloud security principles across enterprise systems
- Overseeing security architecture across 100+ cloud-based systems
- Enhancing overall security posture, contributing to a 25% reduction in security incidents
- Improving threat detection and response through automation, reducing incident response time by 40%
This work strengthened the security, resilience, and scalability of nationally critical infrastructure systems.
04
Jaguar Land Rover
Senior Solutions Architect
Worked as a Senior Solutions Architect at Jaguar Land Rover, supporting secure architecture and governance across enterprise systems within manufacturing environments.
Key responsibilities included:
- Reducing Shadow IT systems by over 60% through improved governance and architectural oversight
- Controlling risks associated with third-party access to manufacturing systems and facilities
- Supporting secure integration of external systems while maintaining strong access controls and compliance
- Collaborating with stakeholders to align technical solutions with business and operational requirements
This work improved visibility, reduced risk, and strengthened overall
security and governance across enterprise systems.
05
AIG
Cloud Security & Solution Architecture
Worked in a senior cloud security and architecture role at AIG, providing leadership across multi-cloud environments including Azure and GCP.
Key responsibilities included:
- Leading cloud security initiatives at SteerCo level, providing strategic direction and governance
- Identifying and mitigating security risks using Azure CSPM across multi-cloud environments
- Driving the ‘lift and shift’ cloud migration strategy from design through to implementation
- Supporting database migration and firewall rule consolidation to improve security and efficiency
- Designing network security architecture, including traffic filtering, segmentation, and hub-and-spoke models (east-west and north-south traffic)
- Aligning security controls with industry frameworks including NIST 800, CIS, and MITRE ATT&CK
This work strengthened cloud security governance, improved visibility of risks, and ensured consistent security controls across enterprise cloud platforms.
06
Amer Sports
Lead Security Architect
Worked as a Lead Security Architect at Amer Sports, managing the implementation of cybersecurity measures across global operations spanning Europe, North America, and Asia.
Key responsibilities included:
- Leading security architecture and compliance across international environments, supporting over 100,000 users
- Implementing modern security controls including identity and access management, network segmentation, and vulnerability management
- Deploying Zscaler Tunnel 2 to enhance secure access and network protection for end users
- Developing and delivering a comprehensive security improvement roadmap aligned to global regulatory requirements
- Driving automation of security controls across cloud environments to improve deployment speed and consistency
Achievements included:
- Improving cloud security compliance scores by 20%
- Reducing potential security breach exposure significantly
- Increasing security deployment speed by 25% through automation
- Managing security compliance across 30 international sites
This work strengthened global security posture, improved resilience, and supported scalable, secure access across enterprise systems.